Логотип exploitDog
bind:CVE-2024-3591
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-3591

Количество 2

Количество 2

nvd логотип

CVE-2024-3591

почти 2 года назад

The Geo Controller WordPress plugin before 8.6.5 unserializes user input via some of its AJAX actions and REST API routes, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget is present on the blog.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-j9wj-h588-6g73

почти 2 года назад

The Geo Controller WordPress plugin before 8.6.5 unserializes user input via some of its AJAX actions and REST API routes, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget is present on the blog.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-3591

The Geo Controller WordPress plugin before 8.6.5 unserializes user input via some of its AJAX actions and REST API routes, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget is present on the blog.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-j9wj-h588-6g73

The Geo Controller WordPress plugin before 8.6.5 unserializes user input via some of its AJAX actions and REST API routes, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget is present on the blog.

CVSS3: 6.5
0%
Низкий
почти 2 года назад

Уязвимостей на страницу